Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 213.67.139.53 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:213.67.139.53
Hostname:213-67-139-53-no600.tbcn.telia.com
AS number:AS3301
AS name:TELIANET-SWEDEN Telia Company
Country:- SE
First seen:2023-04-05 12:32:05 UTC
Last online:2023-04-23 21:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-04-05 12:32:05213.67.139.532222
QakBot
Offline
Yes (2023-04-05 12:35:05 UTC)2023-04-23 21:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 213.67.139.53. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-05-03 21:02:0776d75c1a33dcfe0c2ac136a1365d9433DLL dllVirustotal results 67.14%
Quakbot
2023-04-29 12:36:19fb36af4e32826984bf18c7d2c6e7b7c5DLL dlln/a
Quakbot
2023-04-28 12:49:27e90dd8f1104c446582bd92201cd80b06DLL dlln/a
Quakbot
2023-04-24 03:13:054d86ca01b2e944c06bb0fb8188adec73DLL dlln/a
Quakbot
2023-04-20 16:28:3245f241fd144ec617a7610cb4edc51f30DLL dllVirustotal results 21.31%
n/a
2023-04-12 05:28:47c0c4ee24c09a287f47a16a3039e797ffDLL dlln/a
Quakbot
2023-04-06 05:53:3078350767948154fca70e115351316809DLL dllVirustotal results 8.57%
Quakbot